Cyber Security Specialist Job at Russell Tobin, Canada

RVlRbk5vZlVIV1BSN1VDc1Z2cGpWNG9HSlE9PQ==
  • Russell Tobin
  • Canada

Job Description

Job Description

Job title: - Security Specialist - Senior

Location: - 277 Front Street West, Toronto, ON (Hybrid- 2 days a week onsite)

Duration- 12 Months Contract (Possible Extension)

Department- Cybersecurity & ESE

Payment Structure- Hourly

Days per Week- 5

Units per Day- 7.25

Currency- CAD

Description

Our project aims to enhance Client's Cyber Risk Management and Vendor Risk Program, addressing the evolving landscape of cybersecurity threats, vendor risks, and compliance requirements. We are seeking experienced cybersecurity professionals with practical expertise in Governance, Risk, and Compliance (GRC) solutions to optimize our Vendor Risk Management program and perform third-party vendor assessments while aligning with client's business objectives.

Experience/skills required:

  • A minimum of seven (7+) years of experience in information security. Including working with large security projects
  • Strong communication, interpersonal and presentation skills for engaging with diverse stakeholders
  • Expertise in security governance, risk management, and compliance, including developing road maps, policies, standards, procedures and processes
  • Proven experience in contractual security requirements and third-party risk management through RFP processes and vendor evaluations throughout procurement life cycle
  • Ability to work in cross-functional teams, communicating complex technical information to all levels of the organization, including the leadership team
  • Proficient in cybersecurity risk management and third-party risk management tools (e.g., ServiceNow, OneTrust, Audit Board).
  • Experience with development of security processes, procedures and standards documentation
  • Strong knowledge of industry standards and regulations such as PCI-DSS, NIST, ISO 27001 and the ability to ensure compliance
  • Strong time management skills and the ability to prioritize project work and ongoing responsibilities
  • Self-motivated with the ability to work independently in a fast-paced environment in a fast-paced environment
  • Proficiency with standard Microsoft Office tools such as Word, Excel, PowerPoint, PowerBI and Visio

Deliverables

  • Lead security and vendor risk assessments, identifying risks and gaps, and developing mitigation strategies for third-party vendors.
  • Conduct detailed assessments of third-party vendors' security domains, communicate findings, prepare regular reports and updates to management and stakeholders.
  • Develop and implement cybersecurity governance frameworks, policies, and procedures in collaboration with cross-functional teams.
  • Provide support for audit, compliance, and regulatory requests. Precise and thorough documentation and analysis are essential for effective security auditing and compliance efforts.
  • Collaborate with internal teams and vendors to develop cybersecurity requirements for new solutions, ensuring alignment with security policies and standards.
  • Work with other team members to develop and align with cybersecurity requirements for solutions as required
  • Work with project teams to recommend and implement security controls to address identified risks.
  • Work with Enterprise Architecture, Solution Delivery, Security and Operations teams as part of a large program/project team to ensure security solutions and meet security compliance and security policies and standards
  • Identify requirements for policies and standards, and work with relevant teams in creation, development, review and approval
  • Act as a cybersecurity resource for new and upcoming project-based detail work
  • Work with project teams to identify and recommend security controls to remediate security risks and issues
  • Ongoing compliance work related to regulatory requirements and/or compliance to client standards
  • Develop the security process, procedure, governance artifacts and security controls within the Cybersecurity Risk Management and Governance/Compliance Programs.
  • Assist with security audits and threat/risk assessments to ensure compliance with security policies, standards and procedures, and work with business/technical/operational areas in taking corrective actions on any identified security exposures
  • Provide advice, risk assessment, recommendations and technical assistance in implementing security controls for projects
  • Communicate regularly with cybersecurity teams, internal stakeholders, project teams and representatives from various functional teams, including escalating any matters to senior team members that require additional analysis
  • Support the implementation of security principles, policies, and standards to align with industry best practices, ensuring security controls are integrated into system development, deployment, and operation

Education:

A current security designation (CISSP, CISM, CCSP or CISA)

Must Haves:

  • 7+ years' experience in information security, including working with large security projects
  • Proven experience in contractual security requirements and third-party risk management through RFP processes and vendor evaluations throughout procurement life cycle
  • Proficient in cybersecurity risk management and third-party risk management tools (e.g., ServiceNow, OneTrust, Audit Board)
  • Strong knowledge of industry standards and regulations such as PCI-DSS, NIST, ISO 27001 and the ability to ensure compliance

Location: Hybrid – 2 days a week onsite

Public Sector Experience: Preferred

Job Tags

Hourly pay, Contract work, 2 days per week,

Similar Jobs

Only Data Entry

Remote Data Entry Coordinator Junior Job at Only Data Entry

 ...A data management company is seeking a detail-oriented Data Entry Coordinator Junior for a remote position. The role involves accurately...  ...passion for precision and possess an eye for detail. This entry-level opportunity offers a chance to develop skills in data management... 

American Savings Bank

Sales Performance Analyst Job at American Savings Bank

 ...Primary Purpose Of Job Collects, analyzes and reports on sales performance data for the Consumer Banking division. Develops sales forecasts and monitors the relationship between sales, growth, and incentives. Major Job Accountabilities Designs and produces standard... 

SupportFinity

Administrative Business Partner, Infra and Security (San Francisco) Job at SupportFinity

 ...Administrative Business Partner, Infra and Security Roblox | Posted Jan 14, 2026 Apply Full-time Advanced (5-10 yrs) Every day, tens of millions of people come to Roblox to explore, create, play, learn, and connect with friends in 3D immersive digital experiences... 

Great Lakes Ace

Part-Time Sales Associate with Keys Job at Great Lakes Ace

Job Description Job Description Part-Time Sales Associate with Keys Location: Store 18444 - Brighton, MI Requisition ID: REQ-25693 Job Type: Part time Description: About Ace Retail Group Ace Retail Group (ARG), is a division of Ace Hardware Corporation...

Best Buy

Retail Warehouse Associate Job at Best Buy

 ...discount Financial savings and retirement resources Support for your physical and mental well-being About us As part of the Best Buy team, youll help us fulfill our purpose to enrich lives through technology. We bring that to life every day by humanizing and...